README v3.25.1 2026-05-11
Table of contents
1. General
1.1 Extract the NED package
1.2 Install the NED package
1.2.1 Local install
1.2.2 System install
1.3 Configure the NED in NSO
2. Optional debug and trace setup
3. Dependencies
4. Sample device configuration
5. Built in live-status actions
6. Built in live-status show
7. Limitations
8. How to report NED issues and feature requests
9. How to rebuild a NED
10. Limitations and Workarounds
10.1 LTM Rule Limitations
10.2 Net Self Allow-Service Limitations
10.3 VLAN Auto-Configuration
10.4 SNMP User Password Limitations
10.5 Encrypted Password Rollback Issues
10.6 Device Discovery Limitations
10.7 Crypto CRL/SSL-CRL Limitations
10.8 LTM Rule Creation
10.9 Port Representation Mismatches
10.10 Multi-partition Configuration
10.11 IMISH Shell Limitations
10.12 CM Device Unicast-Address
10.13 File Download Buffer Size
10.14 Net/FDB Deletion
11. Advanced Configuration handling and customizing NED Settings
11.1 Auth Partition and Route Domain Dependency:
11.2 Dynamic Routing Protocol Dependencies:
11.3 Sporadic Out-of-Sync Issues:
11.4 Multi-partition Combinations:
11.5 Single partition sync - for non-default /Common partition :
11.6 Auto-config Handling:
11.7 Performance Considerations1. General
1.1 Extract the NED package
1.2 Install the NED package
1.2.1 Local install
1.2.2 System install
1.3 Configure the NED in NSO
Extra Setup Warning
IMPORTANT
1.3.1 F5-BIGIP NED is a generic SSH NED by design
Example:
1.4 Getting Started Quick Guide
2. Optional debug and trace setup
3. Dependencies
4. Sample device configuration
Sample Configuration Workflow
4.1. Enter device config mode & create object
4.2. Preview (dry-run) native commands
4.3. Commit the transaction
4.4. Check sync status
4.5. Compare configuration
5. Built in live-status actions
Available Actions Overview
5.1 Generic Command Execution
5.1.1 any Action - TMSH Commands
any Action - TMSH Commands5.1.2 any-outside-tmsh Action - Exec Commands
any-outside-tmsh Action - Exec Commands5.1.3 show Action - Show Commands
show Action - Show Commands5.2 File Operations
5.2.1 Upload File
5.2.2 Download File
5.2.3 Delete File
5.3 Certificate Management
5.3.1 Install Certificate
5.4 ASM Policy Management
5.4.1 Upload Policy
5.4.2 Get Policies
5.4.3 Apply Policy
5.4.4 Import Policy
5.4.5 Export Policy
5.4.6 Download Policy
5.5 Advanced Interactive Commands
5.5.1 outside-tmsh-prompts - Interactive Commands
outside-tmsh-prompts - Interactive Commands5.5.2 exec-rest-call - REST API Calls
exec-rest-call - REST API Calls5.5.3 outside-tmsh-cmds - Duplicated Commands
outside-tmsh-cmds - Duplicated Commands5.6 Success Indicators
6. Built in live-status show
6.1 Live Status: show sys version
7. Limitations
7.1 ltm / rule *
7.2 net / self / * / allow-service all
7.3 net / vlan *
7.4 Custom NED-setting file-download-buffer-size
7.5 compare-config diffs on sys snmp users -password
7.6 Encrypted-password rollback
7.7 Auto-config handling
7.8.1 Device discovery in /cm/trust-domain
/cm/trust-domain7.8.2 False 'in-sync' result when check-sync after device discovery
7.9 sys crypto crl / sys file ssl-crl
7.9.1. Provided that the crl is stored in the device, issue an install command from the NED to install the crl test-crl.pem
test-crl.pem7.9.2 Issue a sync-from to fetch the configuration for:
7.9.3 Delete both sys crypto crl test-1 & sys file ssl-crl test-1 from the NED
sys crypto crl test-1 & sys file ssl-crl test-1 from the NED7.10 Creating /ltm rule
7.10.1. Example: unescaped ltm rule and output:
7.10.2. Example: escaped ltm rule and output:
7.11 Port representation - alphabetical or numerical
7.12 Writing and reading to all partitions with one device instance
7.12.1. To enable the reading of all partitions:
7.12.2. Writing to other partitions beside the standard partition /Common:
7.12.3. The below config has been tested to be created/modified/deleted on a partition beside the /Common partition on the NED:
/Common partition on the NED:7.13 ned-id change
7.14 Configuring ltm/profile/http/encrypt-cookies
7.15 Removal of set-hooks
7.15.1. /ltm/virtual/destination -> tailf:callpoint ltm-virtual-mask-hook { tailf:set-hook node; }
7.15.2 /ltm/virtual/ip-protocol -> tailf:callpoint ltm-virtual-hook { tailf:transaction-hook node; }
7.16 net/* and security/firewall/* mirroring auto config
7.17 Deleting net/fdb and subnodes
7.18 Enabling and using the IMI shell (imish)
7.19 Configuring cm/device/unicast-address
8. How to report NED issues and feature requests
9. How to rebuild a NED
10. Limitations and Workarounds
10.1 LTM Rule Limitations
10.2 Net Self Allow-Service Limitations
10.3 VLAN Auto-Configuration
10.4 SNMP User Password Limitations
10.5 Encrypted Password Rollback Issues
10.6 Device Discovery Limitations
10.7 Crypto CRL/SSL-CRL Limitations
10.8 LTM Rule Creation
10.9 Port Representation Mismatches
10.10 Multi-partition Configuration
10.11 IMISH Shell Limitations
10.12 CM Device Unicast-Address
10.13 File Download Buffer Size
10.14 Net/FDB Deletion
11. Advanced Configuration handling and customizing NED Settings
11.1 Auth Partition and Route Domain Dependency:
11.2 Dynamic Routing Protocol Dependencies:
11.3 Sporadic Out-of-Sync Issues:
11.4 Multi-partition Combinations:
11.5 Single partition sync - for non-default /Common partition :
11.6 Auto-config Handling:
11.7. Performance Considerations
Last updated
Was this helpful?

